US9930069B2ActiveUtilityA1

Operation of a security element with the set of operating parameters matched to the selected use profile

Assignee: GIESECKE & DEVRIENT GMBHPriority: Jun 18, 2013Filed: Jun 11, 2014Granted: Mar 27, 2018
Est. expiryJun 18, 2033(~6.9 yrs left)· nominal 20-yr term from priority
Inventors:Ulrich Wimböck
H04W 12/06H04W 4/029H04L 67/306H04L 63/0853H04W 8/183H04W 4/028H04L 63/20
44
PatentIndex Score
0
Cited by
21
References
10
Claims

Abstract

A method for operating a security element which is part of a mobile end device, and a security element, have functionality depending on a set of operating parameters that is deposited on the security element. The method comprises the following steps: operating the security element with the set of operating parameters that is deposited on the security element; collecting data about the use of the security element and/or of the mobile end device; selecting a use profile on the basis of the collected data, with the use profile being assigned a set of operating parameters that is matched thereto; and operating the security element with the set of operating parameters that is matched to the selected use profile.

Claims

exact text as granted — not AI-modified
The invention claimed is: 
     
       1. A method for operating a security element implemented in hardware, the security element being part of a mobile end device, with the functionality of the security element depending on a set of operating parameters that is deposited on the security element, wherein the method comprises the following steps:
 operating the security element with the set of operating parameters that is deposited on the security element, the security element including an embedded microprocessor and a data memory, the embedded microprocessor including a secure area that hosts a trusted execution environment; 
 collecting data about the use of the security element and/or of the mobile end device; 
 the trusted execution environment hosted in the security element selecting a use profile on the basis of the collected data, with the use profile being assigned a set of optimized operating parameters that is matched thereto based on the collected data; and 
 operating the security element with the set of optimized operating parameters that is matched to the selected use profile, wherein at least one of the optimized security element operating parameters is different from the deposited set of operating parameters. 
 
     
     
       2. The method according to  claim 1 , wherein the step of collecting data about the use of the security element and/or of the mobile end device is carried out by means of an application on the security element. 
     
     
       3. The method according to  claim 1 , wherein the step of selecting a use profile is effected through the security element. 
     
     
       4. The method according to  claim 1 , wherein the step of selecting a use profile is effected through a server entity which is in communication with the security element and which has access to a database having a multiplicity of use profiles. 
     
     
       5. The method according to  claim 4 , wherein the security element is a subscriber identification module which is configured for authenticating a subscriber toward a mobile radio network and communicating with the server entity via the mobile radio network. 
     
     
       6. The method according to  claim 5 , wherein the method is used for adapting an operating parameter of the security element, said parameter determining the size as of which access counters deposited in a volatile memory of the security element and respectively stating the number of accesses to a respective memory page of the non-volatile memory of the security element are stored in the non-volatile memory of the security element. 
     
     
       7. The method according to  claim 5 , wherein the method is used for adapting an operating parameter of the security element, said parameter determining the length of the time window within which the security element can log into the mobile radio network. 
     
     
       8. The method according to  claim 1 , wherein the steps of the method are carried out several times in succession in order to iteratively determine optimal operating parameters and/or to be able to take account of changes of the use of the security element and/or of the mobile end device. 
     
     
       9. A security element implemented in hardware which is part of a mobile end device, with the functionality of the security element depending on a set of operating parameters that is deposited on the security element, wherein the security element is configured to perform the following:
 operate the security element with the set of operating parameters that is deposited on the security element, the security element including an embedded microprocessor and a data memory, the embedded microprocessor including a secure area that hosts a trusted execution environment; 
 collect data about the use of the security element and/or of the mobile end device; 
 select, using the trusted execution environment hosted in the security element, a use profile on the basis of the collected data, with the use profile being assigned a set of optimized operating parameters that is matched thereto based on the collected data; and 
 operate the security element with the set of optimized operating parameters that is matched to the selected use profile, wherein at least one of the optimized security element operating parameters is different from the deposited set of operating parameters. 
 
     
     
       10. The security element of  claim 9 , wherein the security element is implemented in a mobile end device.

Join the waitlist — get patent alerts

Track US9930069B2 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.